PLAY PODCASTS
Security Weekly Podcast Network (Video)

Security Weekly Podcast Network (Video)

4,840 episodes — Page 70 of 97

WordPress, Silicon Valley, and Hijacking - Application Security Weekly #45

Wormable stored XSS on WordPress.org, a security lapse revealed private complaints from Silicon Valley employees, hackers hijack thousands of Chromecasts to warn of latest security bug, a linting tool for checking accessibility, speed, and security, host websites on GitHub, and UnCaptcha2. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode45 Follow us on Twitter: https://www.twitter.com/securityweekly

Jan 8, 201929 min

Leadership Articles - Business Security Weekly #112

This week how to moderate a panel discussion, the secret to leading organizational change is empathy, DevOps explained, 5 cloud computing predictions for 2019, and the top 3 things CIOs lose sleep over. Full Show Notes: https://wiki.securityweekly.com/BSWEpisode112

Jan 8, 201938 min

PewDiePie, DOOM Roomba, and 9/11 - Paul's Security Weekly #588

Hijacking smart TV's to promote PewDiePie, hackers attempt to sell stolen 9/11 documents, turning your house into a DOOM level with a Roomba, and hopefully you're over that New Year's hangover, because there's an Adobe PDF app patch to install! Full Show Notes: https://wiki.securityweekly.com/Episode588 Follow us on Twitter: https://www.twitter.com/securityweekly

Jan 7, 201950 min

Breaches, Privacy, Compliance and More! - Paul's Security Weekly #588

The Security Weekly crew has a lively topic discussion on the following: Security Breaches, Privacy, Vulnerability Disclosure, Evaluating Security Solutions, and Compliance. Full Show Notes: https://wiki.securityweekly.com/Episode588 Follow us on Twitter: https://www.twitter.com/securityweekly

Jan 6, 20191h 11m

Helping People In The Security Community - Paul's Security Weekly #588

"Phoneboy" has been helping the security community for over 15 years. We fondly remember Phoneboy as a resource that helped us configure our Check Point firewalls back in the day! Phoneboy comes on the show to discuss how to help people in the security community, a topic near and dear to our hearts. Full Show Notes: https://wiki.securityweekly.com/Episode588 Follow us on Twitter: https://www.twitter.com/securityweekly

Jan 5, 201944 min

Hacking the Brainstem, Mandy Logan - Paul's Security Weekly #587

Following a series of 5 strokes and major head injuries, Mandy is no longer in the construction engineering industry. Instead, she is pursuing all things InfoSec with an emphasis on Incident Response, Neuro Integration, Artificial General Intelligence, sustainable, ethical neuro tech, and improving the lives and community of InfoSec professionals and Neurodiverse professionals. She enjoys art, requires loads of rest still, and hopes to be half the person her service dog, Trevor, is. Support Mandy by going to her GoFundMe Page: https://www.gofundme.com/hacking-recovery-brainstem-stroke Full Show Notes: https://wiki.securityweekly.com/Episode587 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 24, 20181h 6m

What The Heck Are "Security Basics"? - Paul's Security Weekly #587

The question comes up quite often, what should organizations be doing to meet the basic security requirements? We often hear the terms "Security Basics", "Minimum Security Standards" or dear lord "Security Hygiene". But what does all this mean? Is it the same for everyone? People will point to different resources that attempt to define the security basics, but do they really work? Does compliance play into this picture? Full Show Notes: https://wiki.securityweekly.com/Episode587 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 23, 20181h 48m

Detecting Attacker Behavior, LogRhythm - Paul's Security Weekly #587

Vaughn will discuss using freely available tools and logs you are already collecting to detect attacker behavior. Vaughn has a cookbook that will allow you to configure and analyze logs to detect attacks in your environment. You don't need anything fancy to detect attacks, use what you have along with freely available tools and techniques! To get involved with LogRhythm, go to: https://securityweekly.com/logrhythm Full Show Notes: https://wiki.securityweekly.com/Episode587 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 22, 201825 min

Top Ten List for 2018 - Enterprise Security Weekly #120

Paul, Matt Alderman, and John Strand talk Paul's Top Ten List of 2018! They talk about Paul's personal favorite acquisitions, breaches, vulnerabilities, interviews, attack tools, news articles, and more! Full Show Notes: https://wiki.securityweekly.com/ES_Episode120 Visit http://securityweekly.com/esw for all the latest episodes!

Dec 21, 201820 min

Bitdefender, Symantec, & Untangle - Enterprise Security Weekly #120

Bitdefender offers new managed threat monitoring service, Symantec and Fortinet partner to deliver robust and comprehensive cloud security service, Untangle partners with Malwarebytes to bring layered security to SMBs, and more! Full Show Notes: https://wiki.securityweekly.com/ES_Episode120 Visit http://securityweekly.com/esw for all the latest episodes!

Dec 21, 201829 min

Signal App, Jenkins Servers, & WordPress - Application Security Weekly #44

Facebook bug exposed private photos of 6.8 million users, thousands of Jenkins servers will let anonymous users become admins, Signal app can't include a backdoor for the Australian government, WordPress plugs bug that led to Google indexing some user passwords, and more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode44 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 20, 201828 min

Leadership Articles - Business Security Weekly #111

Matt and Paul discuss how to be productive during the holiday season, how to work from home without losing your mind, how to talk to your boss when you're underperforming, selling your product as you build it, and more! Full Show Notes: https://wiki.securityweekly.com/BSWEpisode111

Dec 19, 201821 min

Harry Sverdlove, Edgewise - Application Security Weekly #44

Harry Sverdlove is the CTO of Edgewise. Harry joins Keith and Paul to discuss what Edgewise does in the AppSec world, segmentation, cloud migration, trying different architectures, and more! To get involved with Edgewise, go to: https://www.edgewise.net/securityweekly Full Show Notes: https://wiki.securityweekly.com/ASW_Episode44 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 19, 201832 min

Bob Ackerman, AllegisCyber - Business Security Weekly #111

Bob Ackerman is a legend in venture capital investing and is referred to as one of "Cyber's Money Men". Bob is the Founder and Managing Director of venture capital firm AllegisCyber, Co-Founder of DataTribe, Maryland's Cyber Start-up Studio, and the Founder and Executive Chairman of FounderÕs Equity Partners. Bob, welcome to Business Security Weekly. Full Show Notes: https://wiki.securityweekly.com/BSWEpisode111

Dec 18, 201847 min

Taylor Swift, KringleCon, & 3D Head - Paul's Security Weekly #586

How Taylor Swift used Facial Recognition to Thwart Stalkers, unlocking android phones with a 3D printed head, Ticketmaster fails to take responsibility for malware, and it's December of 2018, To Hell with it, Just patch your stuff already! Full Show Notes: https://wiki.securityweekly.com/Episode586 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 17, 201847 min

Ed Skoudis, Counter Hack Challenge - Paul's Security Weekly #586

Ed Skoudis, Founder of the Counter Hack Challenge and Kringle Con 2018, joins us on the show to talk about this years challenge and what's in store! "Welcome to Counter Hack Challenges, an organization devoted to creating educational, interactive challenges and competitions to help identify people with information security interest, potential, skills, and experience. We design and operate a variety of capture-the-flag and quiz-oriented challenges for the SANS Institute, Cyber Aces, US Cyber Challenge, and other organizations. Our featured products include NetWars, CyberCity, Holiday Hack Challenge, Cyber Aces Online, and several Cyber Quests." Join KringleCon: www.kringlecon.com Full Show Notes: https://wiki.securityweekly.com/Episode586 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 16, 201834 min

Minerva, Rapid7, & Venafi - Enterprise Security Weekly #119

NopSec announces the latest release of its flagship product, Minerva Labs Anti-Evasion Platform achieves VMware ready status, SecurityScorecard announces partnership with cybernance to drive holistic view of cyber risk across the enterprise, and we have some acquisition and funding updates from Venafi, WhiteFox, and Pindrop! Full Show Notes: https://wiki.securityweekly.com/ES_Episode119 Visit http://securityweekly.com/esw for all the latest episodes!

Dec 15, 201827 min

Don Murdoch, Regent University Cyber Range - Paul's Security Weekly #586

Don Murdoch is the Assistant Director at Regent University Cyber Range. Don discusses his book "Blue Team Handbook Incident Response Edition". Full Show Notes: https://wiki.securityweekly.com/Episode586 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 15, 201841 min

John Bradshaw, Acalvio - Enterprise Security Weekly #119

This segment is sponsored by Acalvio. Check out their deception technologies by visiting https://securityweekly.com/acalvio. And remember, all [cyber] war is based on deception! Our guest is John Bradshaw, the Sr. Director of Solutions Engineering at Acalvio Technologies. John has more than 25 years of experience in the Cyber Security industry focusing on advanced, targeted threats. John joins Paul Asadoorian and John Strand to discuss the five tenets of enterprise deception, levels of interactivity for deception targets, and many more interest facets of deception technologies as they are applied to an enterprise security program! To learn more about Acalvio, go to: https://securityweekly.com/acalvio Full Show Notes: https://wiki.securityweekly.com/ES_Episode119 Visit http://securityweekly.com/esw for all the latest episodes!

Dec 14, 201830 min

Kubernetes, Firefox, & WordPress - Application Security Weekly #43

Kubernetes instances are being hijacked worldwide, malicious sites abuse 11-year old Firefox bug that Mozilla failed to fix, Google is on a Witch Hunt for Internal Leakers, a botnet of over 20,000 WordPress sites is attacking other WordPress sites, the rise of visual studio code, and more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode43 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 13, 201827 min

Chris Elgee, Counter Hack Challenge - Application Security Weekly #43

Chris Elgee is a full time husband, father of four, and technical engineer at Counter Hack Challenges. Chris joins Keith and Paul this week to talk about the Counter Hack Challenge, how it's been working on the challenge vs. playing it, and more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode43 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 12, 201822 min

Leadership & Communication - Business Security Weekly #110

How to collaborate with people you don't like, the right way to solve complex business problems, what the habits are of successful people, three things to know before you land a tech job, a CISO's wishlist, and more! Full Show Notes: https://wiki.securityweekly.com/BSWEpisode110

Dec 12, 201835 min

Brian Carey, Rapid7 - Business Security Weekly #110

Brian Carey is a Senior Security Consultant at Rapid7, specializing in: Security Program Assessments, Security Program Development, Vulnerability Management Program Development, Security Awareness and Policy Development. In this interview, we discuss emerging trends that he is seeing with his clients, and how they impact their clients' security programs, including maturity, roadmap, and recommendations! To learn more about Rapid7, go to: www.rapid7.com/securityweekly Full Show Notes: https://wiki.securityweekly.com/BSWEpisode110

Dec 11, 201833 min

Marriott Breach, Lame Printer Hack, and Docker - Paul's Security Weekly #585

This week, how Docker containers can be exploited to mine for cryptocurrency, WordPress sites attacking other WordPress sites, why the Marriott Breach is a valuable IT lesson, malicious Chrome extensions, why hospitals are the next frontier of cybersecurity, and how someone is claiming to sell a Mass Printer Hijacking service! Full Show Notes: https://wiki.securityweekly.com/Episode585 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 10, 201840 min

Marcello Salvati, BHIS - Paul's Security Weekly #585

Marcello Salvati is a security consultant at BHIS, and is giving a technical segment on SilentTrinity. Marcello will solve the red team tradecraft problem of gaining dynamic access to the .net api without going through powershell. To learn more about Black Hills Information Security, go to: https://www.blackhillsinfosec.com/PSW Full Show Notes: https://wiki.securityweekly.com/Episode585 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 9, 201833 min

Lenny Zeltser, Minerva Labs - Paul's Security Weekly #585

Lenny Zeltser the VP of Products at Minerva, will be giving a technical segment on Evasion Tactics in Malware from the Inside Out. He will explain the tactics malware authors use to evade detection and analysis and find out how analysts examine these aspects of malicious code with a disassembler and a debugger. To learn more about Minerva Labs, go to: https://l.minerva-labs.com/security-weekly Full Show Notes: https://wiki.securityweekly.com/Episode585 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 8, 20181h 6m

Ixia, Yubico, Fortinet, and ZeroStack - Enterprise Security Weekly #118

Ixia extends collaboration with ProtectWise, Ping Identity brings in New Customer Identity as a service solution, Fortinet introduces new security automation capabilities on AWS, and Yubico announces YubiHSM 2 integration with AWS IoT Greengrass! Full Show Notes: https://wiki.securityweekly.com/ES_Episode118 Visit http://securityweekly.com/esw for all the latest episodes!

Dec 8, 201826 min

Mike Nichols, Endgame - Enterprise Security Weekly #118

Mike Nichols, the VP of Product for Endgame, joins us for an interview to talk about MITRE evaluation of Endgame, Open-Source Query Language EQL, and Storytime with Mike! To learn more about Endgame, go to: www.endgame.com Full Show Notes: https://wiki.securityweekly.com/ES_Episode118 Visit http://securityweekly.com/esw for all the latest episodes!

Dec 7, 201836 min

NSA Malware, AFL Fuzzer, & Firecracker - Application Security Weekly #42

Hackers are opening SMB ports on routers to infect PCs with NSA malware, bug detectives whip up smarter version of classic AFL fuzzer to hunt code vulnerabilities, malware & rogue users can spy on some apps' HTTPS crypto, exploiting developer infrastructure is insanely easy, the state of JavaScript, Amazon announces Firecracker, and more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode42 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 6, 201830 min

Leadership Articles - Business Security Weekly #109

Paul and Jason Alburquerque discuss The new math of leadership, How pragmatic leaders can transform stuck organizations, and Why building a work community is critical! Full Show Notes: https://wiki.securityweekly.com/BSWEpisode109

Dec 5, 201836 min

Aleksei Tiurin, Acunetix - Application Security Weekly #42

Aleksei Tiurin is the Senior Security Researcher for Acunetix. He is performing a technical segment on reverse proxies using weblogic, Tomcat, and Nginx. To learn more about Acunetix, go to: www.acunetix.com/securityweekly Full Show Notes: https://wiki.securityweekly.com/ASW_Episode42 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 5, 201830 min

Jay Prassl, Automox - Business Security Weekly #109

Matt Alderman interviews Jay Prassl, the CEO of Automox. Jay Prassl explains what Automox does, how Automox bridges the gap between ITOps and SecOps use case, and how Automox defines the way to patch systems in the MacOS, Linux, Windows, and MSP. To learn more about Automox, go to: www.automox.com Full Show Notes: https://wiki.securityweekly.com/BSWEpisode109

Dec 4, 201822 min

"Dunkin" Donuts, Microsoft, & Marijuana - Paul's Security Weekly #584

Hackers breach Dunkin Donuts, how insiders are serious threats to security in an organization, the return of email flooding, Microsoft helps police shut down fake tech support in India, and how Las Vegas police are cracking down on Black Market marijuana sales! Full Show Notes: https://wiki.securityweekly.com/Episode584 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 3, 20181h 17m

Wietse Venema & Dan Farmer, SATAN - Paul's Security Weekly #584

Wietse Venema and Dan Farmer, the Developers of Security Administrator Tool for Analyzing Networks (SATAN), talk about their experience as developers, their journey to creating SATAN and their decision to keep SATAN a open source tool. Full Show Notes: https://wiki.securityweekly.com/Episode584 Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 2, 201859 min

Sven Morgenroth, Netsparker - Paul's Security Weekly #584

Sven will talk about PHP Object injection vulnerabilities and explain the dangers of PHP's unserialize function. He will show the format of serialized PHP Objects, explain PHP's magic methods and how to write an exploit for a PHP Object Injection vulnerability during his technical demo. Full Show Notes: https://wiki.securityweekly.com/Episode584 To learn more about Netsparker, go to: https://www.netsparker.com/securityweekly Follow us on Twitter: https://www.twitter.com/securityweekly

Dec 1, 201831 min

EdgeEngine, Cloud-Native, and Orkus - Enterprise Security Weekly #117

tackPath launches EdgeEngine Serverless Computing, Alcide advances Cloud-Native security Firewall platform, Orkus launches Access Governance platform for Cloud Security, Tufin announces a new Cloud Security solution, and more! Full Show Notes: https://wiki.securityweekly.com/ES_Episode117 Visit http://securityweekly.com/esw for all the latest episodes!

Nov 29, 201825 min

Drupalgeddon, USPS, & JavaScript - Application Security Weekly #41

Hackers use Drupalgeddon 2 and Dirty COW exploits to take over web servers, second WordPress hacking campaign underway, USPS took a year to fix a vulnerability that exposed all 60 million users' data, this JavaScript can snoop on other Browser Tabs to work out what you're visiting, and more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode41 Follow us on Twitter: https://www.twitter.com/securityweekly

Nov 29, 201830 min

Jeremy Winter, Microsoft - Enterprise Security Weekly #117

Jeremy Winter is Director of Azure Management, responsible for areas such as Azure Governance, Policy, Configuration, PowerShell, Disaster Recovery, Azure Migrate and the Azure Portal Experiences from within Azure Compute. He joins Paul and John to talk about Microsoft's Azure program, the shift in CloudOps and how it matters to security, and how it helps further the evolving roles of Cloud Ops and Cloud Security. Full Show Notes: https://wiki.securityweekly.com/ES_Episode117 Visit http://securityweekly.com/esw for all the latest episodes!

Nov 28, 201836 min

Leadership Articles - Business Security Weekly #108

The million-dollar question of cyber-risk, risk assessments essential to secure third-party vendor management, how digital tech is transforming business ecosystem, and more! Full Show Notes: https://wiki.securityweekly.com/BSWEpisode108

Nov 28, 201833 min

Brent Dukes - Application Security Weekly #41

Brent Dukes is a hacker, and Director of Information Security for an established manufacturing company. He joins Keith and Paul this week to talk about WAF's, Pentesting, Burp Suite, and more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode41 Follow us on Twitter: https://www.twitter.com/securityweekly

Nov 28, 201841 min

Richard Seiersen, President of M-Cubed - Business Security Weekly #108

Richard Seiersen a CISO with experience ranging from small technology companies to multi-national conglomerates. He joins Matt and Paul this week to talk about Richard's CISO experience and expertise, and the book Richard co-authored called, "How to Measure Anything in Cybersecurity Risk". Full Show Notes: https://wiki.securityweekly.com/BSWEpisode108

Nov 27, 201838 min

Mimecast, Endpoint Security, & Tufin - Enterprise Security Weekly #16

Israeli cybersecurity company Tufin plans NASDAQ IPO, F-Secure boosts endpoint detection and response, Mimecast joins IBM Security app exchange community, and Awake Security debuts Network Traffic Analysis Platform to detect risks! Full Show Notes: https://wiki.securityweekly.com/ES_Episode116 Visit http://securityweekly.com/esw for all the latest episodes!

Nov 24, 201821 min

Rick Fernandez, LogRhythm - Enterprise Security Weekly #16

Rick Fernandez is the Sr. Sales Engineer focused on Sales Integrators at LogRhythm. The discussion is about what Sis want isn't that different from the Enterprise. They discuss automating the hunt, contextualizing and enriching before analysts have to work with the alarm/data, and the ability to scale contextualization and enrichment so it pulls from your entire environment, not just a single source/log/event. Full Show Notes: https://wiki.securityweekly.com/ES_Episode116 Visit http://securityweekly.com/esw for all the latest episodes!

Nov 23, 201836 min

Interviews: Venafi, Irdeto, and HP - Enterprise Security Weekly #16

Our interviews with Jeff Hudson the CEO of Venafi, Dr. Kimberlee A. Brannock and Michael Howard from HP, and Ben Bennett and Mark Hearn from Irdeto. For Full DefCon18 Playlist, go to: https://securityweekly.com/summercamp18 Visit http://securityweekly.com/esw for all the latest episodes!

Nov 22, 201848 min

Goals, Leadership, & Don't Set Limits - Business Security Weekly #107

Jason Alburquerque and Paul discuss six ways you can establish which goals are important, how to diversify your professional network, the impact of perception and bias on leadership, and more! Full Show Notes: https://wiki.securityweekly.com/BSWEpisode107

Nov 21, 201825 min

Michael Pleasant, Open Security - Business Security Weekly #107

Michael Pleasant is the Chief Executive Officer at Open Security. Michael talks about how his transferring from Marine training to a business environment, brought a different perspective/technique to the business. He also talks about his company Open Source and their mission for the client. Full Show Notes: https://wiki.securityweekly.com/BSWEpisode107

Nov 20, 201831 min

Instagram, Kraken, GitMiner - Application Security Weekly #40

Instagram leaks passwords to the public, Clickjacking on Google MyAccount Worth $7,500, James Wickett's thread on Open Source SAST options, an advanced search tool for sensitive information stored in GitHub repos, and more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode40 Follow us on Twitter: https://www.twitter.com/securityweekl

Nov 20, 201829 min

John Kinsella, Layered Insight - Application Security Weekly #40

Previously co-founder and head of product at Layered Insight, John now leads container security engineering at Qualys after it's acquisition of Layered Insight. John talks about Qualys' Container Security that centralized, continuous discovery and tracking for containers and images. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode40 Follow us on Twitter: https://www.twitter.com/securityweekly

Nov 19, 201835 min

Spectre, ATMs, and Japan's Minister - Paul's Security Weekly #583

7 new Spectre/Meltdown attacks, Hacking ATM's for free cash is easier than Windows XP, AI can now fake fingerprints fooling ID scanners, and Japan's cybersecurity minister admits he's never used a computer! Full Show Notes: https://wiki.securityweekly.com/Episode583 Follow us on Twitter: https://www.twitter.com/securityweekly

Nov 19, 20181h 15m

John Moran, DFLabs - Paul's Security Weekly #583

John is a Senior Product Manager at DFLabs, where he performs a wide variety of tasks from product management to content development and partner management. John Moran talks about IncMan SOAR and how DFLabs Automation & Response platform helps automate, orchestrate, and measure CSIRTs and SOCs. To learn more about DFLabs, go to: www.dflabs.com/securityweekly Full Show Notes: https://wiki.securityweekly.com/Episode583 Follow us on Twitter: https://www.twitter.com/securityweekly

Nov 18, 201840 min